> Source: [sk151893](https://support.checkpoint.com/results/sk/sk151893)

# sk151893 - Cloud Firewall for Azure Gateway in cluster mode appears in "ready/active" and "active attention" state, causes a "Split Brain"

| Property | Value |
|----------|-------|
| Solution ID | sk151893 |
| Date Created | 2019-04-27 |
| Last Modified | 2026-05-11 |
| Technical Level | Advanced |
| Products | Cloud Firewall |
| Versions | R82.10, R81.20, R82 |
| OS | Gaia |
| Platform | Azure |

## Symptoms

- * One of the members in a ClusterXL Azure environment suddenly appears in ready/active state.
* No configuration changes were performed.
* There are a total of 4 processors available in the system, but when the user tries to start the CoreXL, there is only one available core. The amount of cores is not updated/set properly.
* The command *fw ctl affinity -l -a --v* shows that only CPU 0 is permitted:

  ```
  
  Kernel fw_0: CPU 0
  Kernel fw_1: CPU 0
  Kernel fw_2: CPU 0
  
  The current license only permits using CPU 0.
  ```

* The "Check Point CoreXL" option is not available in the "cpconfig" menu on the CloudGuard for Azure Gateway even though an Evaluation License is attached.

## Cause

The problem is in the license attached to the Cluster node.

Note the license string, checking 'cplic print':

**CPSG-VE+1** CPSB-BASE CPSB-SSLVPN-U CPSB-SWB CPSG-C-U-U CPSB-FW CPSB-ADNC-M CPSB-VPN CPSB-NPM CPSB-LOGS CPSB-SSLVPN-U CPSB-IA CPSB-SSLVPN-5 CPSB-ADNC CPSB-IPS CPSB-URLF CPSB-APCL CPSB-AV CPSB-ABOT-L CPSB-ASPM CPSB-CTNT CK-XX-XX-XX-XX-XX

The boldfaced section above specifies that only one core can be enabled.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
